source s_sys {
file ("/proc/kmsg" program_override("kernel"));
unix-stream("/dev/log" max-connections(1000) log_iw_size(100000));
+# if using systemd, comment out the line above, and uncomment line below
+# unix-dgram("/run/systemd/journal/syslog");
internal();
};
# uncomment the line below if you want to setup syslog server
#source s_net { udp(); };
+# if using systemd, an IP address instead of name may be required here
#destination d_loghost { udp("loghost" port(514)); };
destination d_kern { file("/var/log/kernel"); };